High 8.8
2025-07-25< 2.3.0
Droip <= 2.2.6 - Missing Authorization to Authenticated (Subscriber+) Many Actions
Minimum safe version
2.5.2
Update to 2.5.2 or later to address 4 fixable vulnerabilities
Droip <= 2.2.6 - Missing Authorization to Authenticated (Subscriber+) Many Actions
WordPress Droip Plugin <= 2.2.0 is vulnerable to Arbitrary File Upload
CVE-2024-43955
CVE-2024-43954